Re: About upcoming limits on trusted certificates

2020-03-05 Thread Nick Lamb via dev-security-policy
On Wed, 4 Mar 2020 16:41:09 -0700 Wayne Thayer via dev-security-policy wrote: > I'm fairly certain that there is no validity period enforcement in > Firefox. The request is > https://bugzilla.mozilla.org/show_bug.cgi?id=908125 I'm also not in a > position to commit Mozilla to technical

Re: 2020.02.29 Let's Encrypt CAA Rechecking Bug

2020-03-05 Thread Ryan Sleevi via dev-security-policy
On Thu, Mar 5, 2020 at 8:09 AM Malcolm Doody via dev-security-policy < dev-security-policy@lists.mozilla.org> wrote: > On Tuesday, 3 March 2020 15:37:00 UTC, Jacob Hoffman-Andrews wrote: > > We've posted our Incident Report at > https://bugzilla.mozilla.org/show_bug.cgi?id=1619047#c1. > > In

Re: 2020.02.29 Let's Encrypt CAA Rechecking Bug

2020-03-05 Thread Malcolm Doody via dev-security-policy
On Thursday, 5 March 2020 13:10:38 UTC, Julien Cristau wrote: > I believe that's what https://bugzilla.mozilla.org/show_bug.cgi?id=1619179 > is about. > > Cheers, > Julien > Ah, my bad - that bug hadn't surfaced on MDSP ___ dev-security-policy

Re: 2020.02.29 Let's Encrypt CAA Rechecking Bug

2020-03-05 Thread Julien Cristau via dev-security-policy
I believe that's what https://bugzilla.mozilla.org/show_bug.cgi?id=1619179 is about. Cheers, Julien On Thu, Mar 5, 2020 at 2:09 PM Malcolm Doody via dev-security-policy < dev-security-policy@lists.mozilla.org> wrote: > On Tuesday, 3 March 2020 15:37:00 UTC, Jacob Hoffman-Andrews wrote: > >

Re: 2020.02.29 Let's Encrypt CAA Rechecking Bug

2020-03-05 Thread Malcolm Doody via dev-security-policy
On Tuesday, 3 March 2020 15:37:00 UTC, Jacob Hoffman-Andrews wrote: > We've posted our Incident Report at > https://bugzilla.mozilla.org/show_bug.cgi?id=1619047#c1. In light of https://community.letsencrypt.org/t/2020-02-29-caa-rechecking-bug/114591/3, should LE file a 2nd bug report about